get_input in adrotate.pm for Les VanBrunt AdRotate Pro 2.0 allows remote attackers to modify the database and possibly execute arbitrary commands via a SQL code injection attack.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Adrotate_pro | Les_vanbrunt | 2.0 (including) | 2.0 (including) |